Ανοικτή Διακυβέρνηση & τρόποι εφαρμογής της Σεπτέμβριος 2015

Similar documents
CSP Forum 2014, Athens, May

Cross-Border Legal Identity Management

2.2 SEMANTIC INTEROPERABILITY FOR REPRESENTATION POWERS AND MANDATES ( )

Challenges of eid Interoperability: The STORK Project

STORK 2.0: Breaking New Grounds on eid and Mandates

eidas Regulation (EU) 910/2014 Gábor Bartha DG CONNECT, European Commission Unit "e-government and Trust"

Feasibility study on an electronic identification, authentication and signature policy (IAS)

eidas Regulation (EU) 910/2014 "Boosting trust in the digital market"

Proposal for a Regulation on Electronic identification and trust services for electronic transactions in the internal market

Understanding Your Enterprise API Requirements

Principles & Guidance for eidas interoperability track eidas and IAM working side by side 14 November 2017

AK IT-Security 1. Representation with electronic mandates. Bernd Zwattendorfer Graz,

e-goverment Services Across Borders

AAA experiences. Reports of the Austrian trust federation

e-goverment Services Across Borders

REFIT Platform Opinion

GÉANT project update. eduteams - AAI as a Service for Collaborative organisations. InAcademia Simple affiliation validation as a Service

The Austrian Citizen Card

Connecting dots Can we collaborate better on digital health?

ISA Action Pilot DEMO session. Date: Authors: Britt Joosten, Guillermo Enero, Ignasi González

Governance versus e-governance: e Procurement

ANNEX: cross border electronic transactions. The old framework the e Signature Directive of 1999 was a big step. However, the European

MANAGE THE LIFECYCLE OF EVERY DIGITAL USER

The power behind a dynamic enterprise

Regional integration - The importance of setting realistic targets

PSD2 TAS Open Banking

Integrating the Healthcare Enterprise (IHE) Integration Statement

Internet identity: Forward in All Directions. Dr Ken Klingenstein, Director, Middleware, Internet2

Delivering Rich Cloud Services with APS 2.0. Michael Toutonghi, Parallels CTO

Federal Identity, Credential, and Access Management Trust Framework Solutions. Overview

FINACLE SERVICES: API MANAGEMENT USING CA API GATEWAY

EduKEEP Towards a User-Centric Identity Management Model

INCOMMON TRUST FEDERATION

BELGIAN APPROACH IDENTITY (ACCESS MANAGEMENT)

IDA e.procurement Workshop

Getting Ahead of Competition: Maximizing SEPA Benefits Through OTC Transformation

COMPLIANCE AUTOMATION AND MONITORING Case study Electronic Invoicing

Working Groups. Swiss edu-id a joint effort. Petra Kauer-Ott

SAP Banking APIs (beta)

The I-Trust Federation: Federating the University of Illinois

University of Murcia. Electronic Government Project

Semantic interoperability and access to base registries

GEOSPATIAL SDI PRODUCT BROCHURE

Shibboleth Access Management Federations as an Organisational Model for SDI

e-government Services the catalyst for a digital Caribbean BROADBAND CARIBBEAN FORUM July 2016

Identity and Access Management Success Stories.

Government solutions. Enterprise & Government Solutions

Common Services Communication with citizens Reusable Generic Tool

Best practice cases and potentials in Europe

Francesco Martini Manager Risk Advisory Deloitte Luxembourg

EIC v Description

ICS JUMP Session. IBM Connections Cloud Catalog

WHAT IS TOURISMlink?

HOW TO CONFIGURE SINGLE SIGN-ON (SSO) FOR SAP CLOUD FOR CUSTOMER USING SAP CLOUD IDENTITY SERVICE

Supporting e-government Progress in the United Arab Emirates

Uniform law of electronic commerce: fundamentals, recent developments and opportunities to support innovation

Enterprise Content Services - OnBase [1]

EGI-Engage: The AAI Strategy for the EGI Infrastructure

InAcademia. Simple Validation Service

e-prior Facilitating interoperable electronic procurement across Europe Technical Overview

BUYER S GUIDE: CUSTOMER IDENTITY & ACCESS MANAGEMENT (CIAM)

Moldova Delivers E-Government Interoperability Platform Powered By WSO2 Middleware Platform

Vertical service-oriented solutions supporting industrial inter-enterprise collaboration

CLIENT PORTAL PERSONALISED PERSPECTIVES. DELIVERED DIGITALLY. 24/7.

Christian Johansson, Global Product Manager Decathlon Software ABB Decathlon Software. AS Systemintegratörer

Review of Priviti PSD2 Use Case and its positioning compared to alternative marketplace offerings

Cegedim Strategic approach. 30 April 2010

API Banking. The shift to open banking

Recipes for Success in Creating Customer Identity. An API Approach To Building the Identity, and Identity Data, Ecosystem

InAcademia Simple Validation Service

Payment Services Directive 2: What it Means for Banks, Customers, and Payment Service Providers

OneList Approvals Technical Overview

Identity Management Services

Proposal for a Regulation on Electronic identification and trust services for electronic transactions in the internal market (eidas)

IBM WebSphere Service Registry and Repository V6.1 optimizes the business value of SOA governance

Digital Transport and Logistics Forum (DTLF) Electronic Freight Transport Information (EFTI) European Maritime Single Window environment (EMSWe)

Enablers & Barriers. Findings from SCOOP4C project. Ευθύμιος Ταμπούρης Πανεπιστήμιο Μακεδονίας Εθνικό Κέντρο Έρευνας κ Τεχνολογικής Ανάπτυξης

RSA SECURID ACCESS Implementation Guide. Rescale

A Web Services Based Architecture for Improvement of the Transparency and Decision-making in Public Administration

Maritime Single Window. INTRASOFT International s Solution for the Global Maritime Community

Opinion of the high level group

Delete this page when ready. Do not include it in your presentation.

Trust in Governmental e-services

GDPR COMPLIANCE: HOW AUTOMATION CAN HELP

Deployment Recommendations for SAP Fiori Front-End Server & SAP Fiori Cloud

Health Plan System Maintenance (HPSM)

Your Guide to the Identity of Things

Smart credentials. Enabling today s and tomorrow s digital identities.

AAPA 2015 Executive Management Conference May 7, Port of San Diego

THE B2X WORLD B2B. Electronic Transactions. by Koussouris S., Lampathaki F., Askounis D.

Recent Developments in Retail Payments

Information Ledgers on R3 Corda Commodities Trade & Logistics PoC. Copyright 2018 Tata Consultancy Services Japan Ltd.

The Benefits of Remote Signing & eidas INFOCOM CYPRUS 2017

A scheme for a sustainable e-id interoperability

What to Do to Convert Your Paper Invoices to PURE Electronic

OPENING A BANK ACCOUNT CROSS BORDERS WITH A DIGITAL ID

REPORT FROM THE COMMISSION TO THE EUROPEAN PARLIAMENT AND THE COUNCIL

Smart credentials. Enabling today s and tomorrow s digital identities.

Questionnaire. Identity Management Maturity Scan for SWITCHaai. Thomas Lenggenhager, SWITCH Thomas Siegenthaler & Daniela Roesti, CSI Consulting AG

Michael Diet Director, Intensum Luxembourg

Transcription:

Ανοικτή Διακυβέρνηση & τρόποι εφαρμογής της Σεπτέμβριος 2015 e-gov Services, eid, STORK 2.0 A necessary combination <Petros KAVASSALIS, Univ. of the Aegean, i4m Lab & CTI, Greece>

eid, eid Management eid Identity Cards become digital eid Management eidm is a process (not merely a technology) that intervenes between a service request and the corresponding service provision with the objective to establish trust for the transaction and secure access to the relevant information 2

1. A straight forward process OAUth! 3

2. A digital identity approach What is a digital identity today? A digital identity is a composite document Multi-section; each section includes a personal attribute Multi-provider; attributes are collected from multiple Identity and Attribute Providers -- IdPs and APs providing service at different quality levels (LOA) Is managed by a federated identity structure (which also manages the user consent process) Is created through the collection of attributes from IdPs and APs members of the federation Is delivered to a Service Provider (SP), and consumed by the SP in an online authentication are access control process 4

Both approaches are technically possible GSIT (OAUth) and many others Cyprus, Belgium etc: common eid to use horizontally to access e-gov services You need a federal e-gov archirecture This is not trivial to design and implement STORK 2.0 can provide a staring basis 5

STORK 2.0 is a large EU online identity federation identity as a service STORK EU-EEA MS proxy nodes MS B ***In US: Backend Attribute Exchange (BAE) but only for Federal Government Services Identity and Attribute Providers 6

It is essentially: (i) a network of proxy nodes (PEPS) IdP AP C-PEPS SP S-PEPS 7

It is essentially: (ii) an attribute collection and aggregation service STORK 2.0 ACS 6 1 2 7 AtP1 AP SP SP 11 10 3 9 8 AtP2 5 attribute collection service 4 IdP Interaction with the user National IdP 8

The STORK 2.0 mechanism for identity attributes provision can be re-used to enable smart e-gov services e-gov services: requirements for federating personal information to (usually) produce an electronic document Cross-border services by necessity Should span over multiple organizations Always involve a process orchestrating various IT systems and users applicant interface basic registries gov IT (cms etc) employees desktops third party services (for example banks) 9

STORK 2.0 for e-government: an opportunity for smart and lean e-gov services Example: subscription of freshmen in Greek Universities involves the physical presence of a student s family. e-subscription through STORK 2.0! Application submission Document submission reception identification STORK 2.0 subscription IdP minedu 10

STORK 2.0 in a nutshell A common framework for cross-border federation and delivery of electronic identity in Europe In online-processes web authentication via multi-attributes digital identities e-mandate provision (vital for legal entities) e-signature cross-border transfer Open standards (SAML 2.0, HTTP POST, WebSSO) Pilots in real-world environment examples, open a bank account, diploma supplement, mandates with detailed power description etc. 11

How STORK 2.0 makes it possible? By creating clean interfaces at the extreme points STORK enabled applicatons common enterprise technologies WS-REST AP SP STORK SAML 2.0 common enterprise technologies SSO-WS-workflow IdP Streamline to increase aggregation efficiency 12

STORK 2.0 Interconnection Supporting Service? a proxy of proxy (S-PEPS) 6 AP1 1 2 7 8 11 10 SP-BANK 3 9 AP2 STORK 2.0 ISS 5 4 13 National IdP

http://www.eid-stork2.eu 14

15